CVE-2024-20952

Source
https://cve.org/CVERecord?id=CVE-2024-20952
Import Source
https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2024-20952.json
JSON Data
https://api.test.osv.dev/v1/vulns/CVE-2024-20952
Aliases
Downstream
Related
Published
2024-01-16T21:41:20.593Z
Modified
2026-06-18T03:55:30.817899185Z
Severity
  • 7.4 (High) CVSS_V3 - CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:N CVSS Calculator
Summary
[none]
Details
Database specific
{
    "cna_assigner": "oracle",
    "unresolved_ranges": [
        {
            "source": "AFFECTED_FIELD",
            "extracted_events": [
                {
                    "last_affected": "Oracle Java SE:8u391"
                },
                {
                    "last_affected": "Oracle Java SE:8u391-perf"
                },
                {
                    "last_affected": "Oracle Java SE:11.0.21"
                },
                {
                    "last_affected": "Oracle Java SE:17.0.9"
                },
                {
                    "last_affected": "Oracle Java SE:21.0.1"
                },
                {
                    "last_affected": "Oracle GraalVM for JDK:17.0.9"
                },
                {
                    "last_affected": "Oracle GraalVM for JDK:21.0.1"
                },
                {
                    "last_affected": "Oracle GraalVM Enterprise Edition:20.3.12"
                },
                {
                    "last_affected": "Oracle GraalVM Enterprise Edition:21.3.8"
                },
                {
                    "last_affected": "Oracle GraalVM Enterprise Edition:22.3.4"
                }
            ]
        }
    ],
    "osv_generated_from": "https://github.com/CVEProject/cvelistV5/tree/main/cves/2024/20xxx/CVE-2024-20952.json"
}
References

Affected packages

Git / github.com/openjdk/jdk

Affected ranges

Type
GIT
Repo
https://github.com/openjdk/jdk
Events
Database specific
{
    "source": "CPE_STRING",
    "extracted_events": [
        {
            "introduced": "0"
        },
        {
            "last_affected": "8-update101"
        },
        {
            "last_affected": "8-update102"
        },
        {
            "last_affected": "8-update11"
        },
        {
            "last_affected": "8-update111"
        },
        {
            "last_affected": "8-update112"
        },
        {
            "last_affected": "8-update20"
        },
        {
            "last_affected": "8-update25"
        },
        {
            "last_affected": "8-update31"
        },
        {
            "last_affected": "8-update40"
        },
        {
            "last_affected": "8-update45"
        },
        {
            "last_affected": "8-update51"
        },
        {
            "last_affected": "8-update60"
        },
        {
            "last_affected": "8-update65"
        },
        {
            "last_affected": "8-update66"
        },
        {
            "last_affected": "8-update71"
        },
        {
            "last_affected": "8-update72"
        },
        {
            "last_affected": "8-update73"
        },
        {
            "last_affected": "8-update74"
        },
        {
            "last_affected": "8-update77"
        },
        {
            "last_affected": "8-update91"
        },
        {
            "last_affected": "8-update92"
        }
    ],
    "cpe": [
        "cpe:2.3:a:oracle:openjdk:8:update101:*:*:*:*:*:*",
        "cpe:2.3:a:oracle:openjdk:8:update102:*:*:*:*:*:*",
        "cpe:2.3:a:oracle:openjdk:8:update11:*:*:*:*:*:*",
        "cpe:2.3:a:oracle:openjdk:8:update111:*:*:*:*:*:*",
        "cpe:2.3:a:oracle:openjdk:8:update112:*:*:*:*:*:*",
        "cpe:2.3:a:oracle:openjdk:8:update20:*:*:*:*:*:*",
        "cpe:2.3:a:oracle:openjdk:8:update25:*:*:*:*:*:*",
        "cpe:2.3:a:oracle:openjdk:8:update31:*:*:*:*:*:*",
        "cpe:2.3:a:oracle:openjdk:8:update40:*:*:*:*:*:*",
        "cpe:2.3:a:oracle:openjdk:8:update45:*:*:*:*:*:*",
        "cpe:2.3:a:oracle:openjdk:8:update51:*:*:*:*:*:*",
        "cpe:2.3:a:oracle:openjdk:8:update60:*:*:*:*:*:*",
        "cpe:2.3:a:oracle:openjdk:8:update65:*:*:*:*:*:*",
        "cpe:2.3:a:oracle:openjdk:8:update66:*:*:*:*:*:*",
        "cpe:2.3:a:oracle:openjdk:8:update71:*:*:*:*:*:*",
        "cpe:2.3:a:oracle:openjdk:8:update72:*:*:*:*:*:*",
        "cpe:2.3:a:oracle:openjdk:8:update73:*:*:*:*:*:*",
        "cpe:2.3:a:oracle:openjdk:8:update74:*:*:*:*:*:*",
        "cpe:2.3:a:oracle:openjdk:8:update77:*:*:*:*:*:*",
        "cpe:2.3:a:oracle:openjdk:8:update91:*:*:*:*:*:*",
        "cpe:2.3:a:oracle:openjdk:8:update92:*:*:*:*:*:*"
    ]
}

Affected versions

Other
jdk7-b100
jdk7-b101
jdk7-b102
jdk7-b103
jdk7-b104
jdk7-b105
jdk7-b106
jdk7-b107
jdk7-b108
jdk7-b120
jdk7-b121
jdk7-b122
jdk7-b123
jdk7-b124
jdk7-b125
jdk7-b126
jdk7-b127
jdk7-b128
jdk7-b129
jdk7-b130
jdk7-b131
jdk7-b132
jdk7-b133
jdk7-b134
jdk7-b135
jdk7-b136
jdk7-b137
jdk7-b138
jdk7-b139
jdk7-b140
jdk7-b141
jdk7-b143
jdk7-b24
jdk7-b25
jdk7-b26
jdk7-b27
jdk7-b28
jdk7-b31
jdk7-b32
jdk7-b33
jdk7-b34
jdk7-b35
jdk7-b36
jdk7-b38
jdk7-b39
jdk7-b40
jdk7-b41
jdk7-b44
jdk7-b45
jdk7-b46
jdk7-b48
jdk7-b49
jdk7-b50
jdk7-b51
jdk7-b53
jdk7-b54
jdk7-b55
jdk7-b56
jdk7-b60
jdk7-b61
jdk7-b62
jdk7-b63
jdk7-b64
jdk7-b65
jdk7-b66
jdk7-b68
jdk7-b70
jdk7-b71
jdk7-b72
jdk7-b73
jdk7-b74
jdk7-b75
jdk7-b76
jdk7-b77
jdk7-b78
jdk7-b79
jdk7-b80
jdk7-b81
jdk7-b82
jdk7-b83
jdk7-b84
jdk7-b85
jdk7-b86
jdk7-b87
jdk7-b88
jdk7-b89
jdk7-b90
jdk7-b91
jdk7-b92
jdk7-b93
jdk7-b94
jdk7-b95
jdk7-b96
jdk7-b97
jdk7-b98
jdk7-b99
jdk8-b01
jdk8-b02
jdk8-b03
jdk8-b04
jdk8-b05
jdk8-b06
jdk8-b07
jdk8-b08
jdk8-b09
jdk8-b10
jdk8-b100
jdk8-b101
jdk8-b102
jdk8-b103
jdk8-b104
jdk8-b105
jdk8-b106
jdk8-b107
jdk8-b108
jdk8-b109
jdk8-b11
jdk8-b110
jdk8-b111
jdk8-b112
jdk8-b15
jdk8-b16
jdk8-b18
jdk8-b19
jdk8-b20
jdk8-b21
jdk8-b22
jdk8-b23
jdk8-b24
jdk8-b25
jdk8-b26
jdk8-b27
jdk8-b28
jdk8-b29
jdk8-b30
jdk8-b31
jdk8-b32
jdk8-b33
jdk8-b34
jdk8-b35
jdk8-b36
jdk8-b37
jdk8-b38
jdk8-b39
jdk8-b40
jdk8-b41
jdk8-b42
jdk8-b43
jdk8-b44
jdk8-b45
jdk8-b46
jdk8-b49
jdk8-b50
jdk8-b51
jdk8-b52
jdk8-b53
jdk8-b54
jdk8-b55
jdk8-b56
jdk8-b57
jdk8-b58
jdk8-b59
jdk8-b60
jdk8-b61
jdk8-b62
jdk8-b63
jdk8-b64
jdk8-b65
jdk8-b66
jdk8-b67
jdk8-b68
jdk8-b69
jdk8-b70
jdk8-b71
jdk8-b72
jdk8-b73
jdk8-b74
jdk8-b75
jdk8-b76
jdk8-b77
jdk8-b78
jdk8-b79
jdk8-b80
jdk8-b81
jdk8-b82
jdk8-b83
jdk8-b84
jdk8-b85
jdk8-b86
jdk8-b87
jdk8-b88
jdk8-b89
jdk8-b90
jdk8-b91
jdk8-b92
jdk8-b98
jdk8-b99

Database specific

source
"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2024-20952.json"

Git / github.com/openjdk/jdk15u

Affected ranges

Type
GIT
Repo
https://github.com/openjdk/jdk15u
Events
Database specific
{
    "source": "CPE_STRING",
    "extracted_events": [
        {
            "introduced": "0"
        },
        {
            "last_affected": "8-update101"
        },
        {
            "last_affected": "8-update102"
        },
        {
            "last_affected": "8-update11"
        },
        {
            "last_affected": "8-update111"
        },
        {
            "last_affected": "8-update112"
        },
        {
            "last_affected": "8-update20"
        },
        {
            "last_affected": "8-update25"
        },
        {
            "last_affected": "8-update31"
        },
        {
            "last_affected": "8-update40"
        },
        {
            "last_affected": "8-update45"
        },
        {
            "last_affected": "8-update51"
        },
        {
            "last_affected": "8-update60"
        },
        {
            "last_affected": "8-update65"
        },
        {
            "last_affected": "8-update66"
        },
        {
            "last_affected": "8-update71"
        },
        {
            "last_affected": "8-update72"
        },
        {
            "last_affected": "8-update73"
        },
        {
            "last_affected": "8-update74"
        },
        {
            "last_affected": "8-update77"
        },
        {
            "last_affected": "8-update91"
        },
        {
            "last_affected": "8-update92"
        }
    ],
    "cpe": [
        "cpe:2.3:a:oracle:openjdk:8:update101:*:*:*:*:*:*",
        "cpe:2.3:a:oracle:openjdk:8:update102:*:*:*:*:*:*",
        "cpe:2.3:a:oracle:openjdk:8:update11:*:*:*:*:*:*",
        "cpe:2.3:a:oracle:openjdk:8:update111:*:*:*:*:*:*",
        "cpe:2.3:a:oracle:openjdk:8:update112:*:*:*:*:*:*",
        "cpe:2.3:a:oracle:openjdk:8:update20:*:*:*:*:*:*",
        "cpe:2.3:a:oracle:openjdk:8:update25:*:*:*:*:*:*",
        "cpe:2.3:a:oracle:openjdk:8:update31:*:*:*:*:*:*",
        "cpe:2.3:a:oracle:openjdk:8:update40:*:*:*:*:*:*",
        "cpe:2.3:a:oracle:openjdk:8:update45:*:*:*:*:*:*",
        "cpe:2.3:a:oracle:openjdk:8:update51:*:*:*:*:*:*",
        "cpe:2.3:a:oracle:openjdk:8:update60:*:*:*:*:*:*",
        "cpe:2.3:a:oracle:openjdk:8:update65:*:*:*:*:*:*",
        "cpe:2.3:a:oracle:openjdk:8:update66:*:*:*:*:*:*",
        "cpe:2.3:a:oracle:openjdk:8:update71:*:*:*:*:*:*",
        "cpe:2.3:a:oracle:openjdk:8:update72:*:*:*:*:*:*",
        "cpe:2.3:a:oracle:openjdk:8:update73:*:*:*:*:*:*",
        "cpe:2.3:a:oracle:openjdk:8:update74:*:*:*:*:*:*",
        "cpe:2.3:a:oracle:openjdk:8:update77:*:*:*:*:*:*",
        "cpe:2.3:a:oracle:openjdk:8:update91:*:*:*:*:*:*",
        "cpe:2.3:a:oracle:openjdk:8:update92:*:*:*:*:*:*"
    ]
}

Affected versions

Other
jdk7-b100
jdk7-b101
jdk7-b102
jdk7-b103
jdk7-b104
jdk7-b105
jdk7-b106
jdk7-b107
jdk7-b108
jdk7-b120
jdk7-b121
jdk7-b122
jdk7-b123
jdk7-b124
jdk7-b125
jdk7-b126
jdk7-b127
jdk7-b128
jdk7-b129
jdk7-b130
jdk7-b131
jdk7-b132
jdk7-b133
jdk7-b134
jdk7-b135
jdk7-b136
jdk7-b137
jdk7-b138
jdk7-b139
jdk7-b140
jdk7-b141
jdk7-b143
jdk7-b24
jdk7-b25
jdk7-b26
jdk7-b27
jdk7-b28
jdk7-b31
jdk7-b32
jdk7-b33
jdk7-b34
jdk7-b35
jdk7-b36
jdk7-b38
jdk7-b39
jdk7-b40
jdk7-b41
jdk7-b44
jdk7-b45
jdk7-b46
jdk7-b48
jdk7-b49
jdk7-b50
jdk7-b51
jdk7-b53
jdk7-b54
jdk7-b55
jdk7-b56
jdk7-b60
jdk7-b61
jdk7-b62
jdk7-b63
jdk7-b64
jdk7-b65
jdk7-b66
jdk7-b68
jdk7-b70
jdk7-b71
jdk7-b72
jdk7-b73
jdk7-b74
jdk7-b75
jdk7-b76
jdk7-b77
jdk7-b78
jdk7-b79
jdk7-b80
jdk7-b81
jdk7-b82
jdk7-b83
jdk7-b84
jdk7-b85
jdk7-b86
jdk7-b87
jdk7-b88
jdk7-b89
jdk7-b90
jdk7-b91
jdk7-b92
jdk7-b93
jdk7-b94
jdk7-b95
jdk7-b96
jdk7-b97
jdk7-b98
jdk7-b99
jdk8-b01
jdk8-b02
jdk8-b03
jdk8-b04
jdk8-b05
jdk8-b06
jdk8-b07
jdk8-b08
jdk8-b09
jdk8-b10
jdk8-b100
jdk8-b101
jdk8-b102
jdk8-b103
jdk8-b104
jdk8-b105
jdk8-b106
jdk8-b107
jdk8-b108
jdk8-b109
jdk8-b11
jdk8-b110
jdk8-b111
jdk8-b112
jdk8-b15
jdk8-b16
jdk8-b18
jdk8-b19
jdk8-b20
jdk8-b21
jdk8-b22
jdk8-b23
jdk8-b24
jdk8-b25
jdk8-b26
jdk8-b27
jdk8-b28
jdk8-b29
jdk8-b30
jdk8-b31
jdk8-b32
jdk8-b33
jdk8-b34
jdk8-b35
jdk8-b36
jdk8-b37
jdk8-b38
jdk8-b39
jdk8-b40
jdk8-b41
jdk8-b42
jdk8-b43
jdk8-b44
jdk8-b45
jdk8-b46
jdk8-b49
jdk8-b50
jdk8-b51
jdk8-b52
jdk8-b53
jdk8-b54
jdk8-b55
jdk8-b56
jdk8-b57
jdk8-b58
jdk8-b59
jdk8-b60
jdk8-b61
jdk8-b62
jdk8-b63
jdk8-b64
jdk8-b65
jdk8-b66
jdk8-b67
jdk8-b68
jdk8-b69
jdk8-b70
jdk8-b71
jdk8-b72
jdk8-b73
jdk8-b74
jdk8-b75
jdk8-b76
jdk8-b77
jdk8-b78
jdk8-b79
jdk8-b80
jdk8-b81
jdk8-b82
jdk8-b83
jdk8-b84
jdk8-b85
jdk8-b86
jdk8-b87
jdk8-b88
jdk8-b89
jdk8-b90
jdk8-b91
jdk8-b92
jdk8-b98
jdk8-b99

Database specific

source
"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2024-20952.json"

Git / github.com/openjdk/jdk8u

Affected ranges

Type
GIT
Repo
https://github.com/openjdk/jdk8u
Events
Database specific
{
    "source": "CPE_STRING",
    "extracted_events": [
        {
            "introduced": "0"
        },
        {
            "last_affected": "8-update101"
        },
        {
            "last_affected": "8-update102"
        },
        {
            "last_affected": "8-update11"
        },
        {
            "last_affected": "8-update111"
        },
        {
            "last_affected": "8-update112"
        },
        {
            "last_affected": "8-update121"
        },
        {
            "last_affected": "8-update131"
        },
        {
            "last_affected": "8-update20"
        },
        {
            "last_affected": "8-update25"
        },
        {
            "last_affected": "8-update31"
        },
        {
            "last_affected": "8-update40"
        },
        {
            "last_affected": "8-update45"
        },
        {
            "last_affected": "8-update51"
        },
        {
            "last_affected": "8-update60"
        },
        {
            "last_affected": "8-update65"
        },
        {
            "last_affected": "8-update66"
        },
        {
            "last_affected": "8-update71"
        },
        {
            "last_affected": "8-update72"
        },
        {
            "last_affected": "8-update73"
        },
        {
            "last_affected": "8-update74"
        },
        {
            "last_affected": "8-update77"
        },
        {
            "last_affected": "8-update91"
        },
        {
            "last_affected": "8-update92"
        }
    ],
    "cpe": [
        "cpe:2.3:a:oracle:openjdk:8:update101:*:*:*:*:*:*",
        "cpe:2.3:a:oracle:openjdk:8:update102:*:*:*:*:*:*",
        "cpe:2.3:a:oracle:openjdk:8:update11:*:*:*:*:*:*",
        "cpe:2.3:a:oracle:openjdk:8:update111:*:*:*:*:*:*",
        "cpe:2.3:a:oracle:openjdk:8:update112:*:*:*:*:*:*",
        "cpe:2.3:a:oracle:openjdk:8:update121:*:*:*:*:*:*",
        "cpe:2.3:a:oracle:openjdk:8:update131:*:*:*:*:*:*",
        "cpe:2.3:a:oracle:openjdk:8:update20:*:*:*:*:*:*",
        "cpe:2.3:a:oracle:openjdk:8:update25:*:*:*:*:*:*",
        "cpe:2.3:a:oracle:openjdk:8:update31:*:*:*:*:*:*",
        "cpe:2.3:a:oracle:openjdk:8:update40:*:*:*:*:*:*",
        "cpe:2.3:a:oracle:openjdk:8:update45:*:*:*:*:*:*",
        "cpe:2.3:a:oracle:openjdk:8:update51:*:*:*:*:*:*",
        "cpe:2.3:a:oracle:openjdk:8:update60:*:*:*:*:*:*",
        "cpe:2.3:a:oracle:openjdk:8:update65:*:*:*:*:*:*",
        "cpe:2.3:a:oracle:openjdk:8:update66:*:*:*:*:*:*",
        "cpe:2.3:a:oracle:openjdk:8:update71:*:*:*:*:*:*",
        "cpe:2.3:a:oracle:openjdk:8:update72:*:*:*:*:*:*",
        "cpe:2.3:a:oracle:openjdk:8:update73:*:*:*:*:*:*",
        "cpe:2.3:a:oracle:openjdk:8:update74:*:*:*:*:*:*",
        "cpe:2.3:a:oracle:openjdk:8:update77:*:*:*:*:*:*",
        "cpe:2.3:a:oracle:openjdk:8:update91:*:*:*:*:*:*",
        "cpe:2.3:a:oracle:openjdk:8:update92:*:*:*:*:*:*"
    ]
}

Affected versions

Other
jdk7-b100
jdk7-b101
jdk7-b102
jdk7-b103
jdk7-b104
jdk7-b105
jdk7-b106
jdk7-b107
jdk7-b108
jdk7-b120
jdk7-b121
jdk7-b122
jdk7-b123
jdk7-b124
jdk7-b125
jdk7-b126
jdk7-b127
jdk7-b128
jdk7-b129
jdk7-b130
jdk7-b131
jdk7-b132
jdk7-b133
jdk7-b134
jdk7-b135
jdk7-b136
jdk7-b137
jdk7-b138
jdk7-b139
jdk7-b140
jdk7-b141
jdk7-b143
jdk7-b24
jdk7-b25
jdk7-b26
jdk7-b27
jdk7-b28
jdk7-b31
jdk7-b32
jdk7-b33
jdk7-b34
jdk7-b35
jdk7-b36
jdk7-b38
jdk7-b39
jdk7-b40
jdk7-b41
jdk7-b44
jdk7-b45
jdk7-b46
jdk7-b48
jdk7-b49
jdk7-b50
jdk7-b51
jdk7-b53
jdk7-b54
jdk7-b55
jdk7-b56
jdk7-b60
jdk7-b61
jdk7-b62
jdk7-b63
jdk7-b64
jdk7-b65
jdk7-b66
jdk7-b68
jdk7-b70
jdk7-b71
jdk7-b72
jdk7-b73
jdk7-b74
jdk7-b75
jdk7-b76
jdk7-b77
jdk7-b78
jdk7-b79
jdk7-b80
jdk7-b81
jdk7-b82
jdk7-b83
jdk7-b84
jdk7-b85
jdk7-b86
jdk7-b87
jdk7-b88
jdk7-b89
jdk7-b90
jdk7-b91
jdk7-b92
jdk7-b93
jdk7-b94
jdk7-b95
jdk7-b96
jdk7-b97
jdk7-b98
jdk7-b99
jdk8-b01
jdk8-b02
jdk8-b03
jdk8-b04
jdk8-b05
jdk8-b06
jdk8-b07
jdk8-b08
jdk8-b09
jdk8-b10
jdk8-b100
jdk8-b101
jdk8-b102
jdk8-b103
jdk8-b104
jdk8-b105
jdk8-b106
jdk8-b107
jdk8-b108
jdk8-b109
jdk8-b11
jdk8-b110
jdk8-b111
jdk8-b112
jdk8-b119
jdk8-b120
jdk8-b121
jdk8-b122
jdk8-b123
jdk8-b124
jdk8-b125
jdk8-b126
jdk8-b127
jdk8-b128
jdk8-b129
jdk8-b130
jdk8-b131
jdk8-b15
jdk8-b16
jdk8-b18
jdk8-b19
jdk8-b20
jdk8-b21
jdk8-b22
jdk8-b23
jdk8-b24
jdk8-b25
jdk8-b26
jdk8-b27
jdk8-b28
jdk8-b29
jdk8-b30
jdk8-b31
jdk8-b32
jdk8-b33
jdk8-b34
jdk8-b35
jdk8-b36
jdk8-b37
jdk8-b38
jdk8-b39
jdk8-b40
jdk8-b41
jdk8-b42
jdk8-b43
jdk8-b44
jdk8-b45
jdk8-b46
jdk8-b49
jdk8-b50
jdk8-b51
jdk8-b52
jdk8-b53
jdk8-b54
jdk8-b55
jdk8-b56
jdk8-b57
jdk8-b58
jdk8-b59
jdk8-b60
jdk8-b61
jdk8-b62
jdk8-b63
jdk8-b64
jdk8-b65
jdk8-b66
jdk8-b67
jdk8-b68
jdk8-b69
jdk8-b70
jdk8-b71
jdk8-b72
jdk8-b73
jdk8-b74
jdk8-b75
jdk8-b76
jdk8-b77
jdk8-b78
jdk8-b79
jdk8-b80
jdk8-b81
jdk8-b82
jdk8-b83
jdk8-b84
jdk8-b85
jdk8-b86
jdk8-b87
jdk8-b88
jdk8-b89
jdk8-b90
jdk8-b91
jdk8-b92
jdk8-b98
jdk8-b99

Database specific

source
"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2024-20952.json"